A map of AI verification technologies

The map covers technical means of verifying claims about AI hardware and software.

  • Claims are what one party wants to verify.
  • Mechanisms are general techniques for verifying a claim.
  • Implementations are specific systems that realise a mechanism.

Claims and mechanisms

Numbers count mechanisms aimed directly at the claimsupporting work onlyExplore the claims and mechanisms graph →

Categories

On-chip & hardware-enabled
Mechanisms built into accelerators or their firmware: trusted execution, attestation, hardware-enabled governance, on-chip telemetry and limits.4 mechanisms · 2 implementations
Off-chip devices & sensors
Retrofittable devices outside the accelerator: network taps and certifiers, power and analog sensors, tamper-evident enclosures.3 mechanisms · 1 implementation
Cryptographic & computational
Protocols that check computation itself: recomputation, zero-knowledge proofs, proofs of learning, proofs of work, challenge-response.10 mechanisms · 10 implementations
Isolation & system architectures
Ways of arranging or constraining a facility so that other checks become possible: bandwidth limits, compartmentalization, memory wiping, secure facilities, whole verification stacks.4 mechanisms · 3 implementations
Compute accounting & provenance
Establishing what compute exists, where it is and what it can do: chip registries, manufacturing records, location verification, capacity bounds.2 mechanisms · 1 implementation
Remote & side-channel sensing
Inferring activity from outside or from physical signals: detecting data centres, classifying workloads from power or other emissions.2 mechanisms

Search

Full search page